- Company Name
- identifi Global Resources
- Job Title
- Data Protection Advisory Specialist Consultant
- Job Description
-
**Job Title**
Data Protection Advisory Specialist Consultant
**Role Summary**
Lead a 3‑month global data security and privacy advisory program for a large international charity. Deliver strategic assessment, policy development, governance structures, training, and ongoing assurance to embed best‑practice data protection across all teams and country offices.
**Expectations**
- Complete all deliverables within a 3‑month engagement, operating outside IR35.
- Provide expert, board‑level guidance, ensuring alignment with GDPR, ISO 27001, NIST, DPDI, and other global frameworks.
- Drive cultural change, build accountability, and establish mechanisms for continuous improvement.
**Key Responsibilities**
1. Conduct a global Data Security & Privacy assessment, identifying gaps and risks.
2. Develop and publish a 2026‑2028 Data Security & Privacy Strategy, including policies, compliance requirements, ethical use principles, roles, and responsibilities.
3. Define and assign data security risk ownership to business owners.
4. Appoint Data Privacy & Security focal points and establish a Global Steering Group to oversee implementation and maturity.
5. Design and deliver tailored training for country offices and focal points.
6. Build and embed a structured assurance program measuring effectiveness, compliance, and risk reduction.
7. Provide BAU advisory support on day‑to‑day data protection matters and emerging risks such as AI governance, cross‑border transfers, and third‑party/vendor data management.
**Required Skills**
- Senior Data Protection / Privacy / Information Security consulting experience.
- Proven ability to lead global data governance or privacy programs.
- Board‑level communication and stakeholder management skills.
- Strong understanding of GDPR and comparable international data protection frameworks.
- Experience in benchmarking against standards (ISO 27001, NIST, DPDI).
- Expertise in cultural change and awareness programs for data protection.
- Knowledge of emerging risks: AI governance, cross‑border data flows, vendor data management.
- Ability to rapidly assess, design, and operationalise high‑impact governance models.
**Required Education & Certifications**
- Bachelor’s or Master’s degree in Law, Computer Science, Information Security, or related field.
- Relevant certifications such as CISSP, CISM, CIPP/E, or equivalent in data protection.